policy-gen

Generate ISO 27001 policy documents from the SoA and control mappings.

Updated Apr 28, 2026
One-click install
npx skills add https://github.com/gombing/ISO27001Agent --skill policy-gen-gombing
Or copy as Structured Prompt for Agent▼
Please help me install this Agent Skill.
Skill: policy-gen
Source: https://github.com/gombing/ISO27001Agent/tree/main/policy-gen
Command: npx skills add https://github.com/gombing/ISO27001Agent --skill policy-gen-gombing

SYSTEM DOCUMENTATION & REQUIREMENTS

What problem does it solve?

Policy generation for ISO 27001 is time-consuming and error-prone; this skill automates producing audit-ready policies from the SoA and existing templates, ensuring consistency and client-specific customization.

Core Features & Use Cases

  • Generates policy documents aligned to Annex A controls based on the SoA.
  • Uses reference templates when available and falls back to built-in templates when absent.
  • Manages client branding, versioning, approval blocks, and audit-readiness across the policy lifecycle.

Quick Start

Load the engagement brief, then run the policy-gen to generate the required policies.

Frequently Asked Questions about policy-gen

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I automate ISO 27001 policy generation for audit readiness?▼

Automate ISO 27001 policy generation by loading your engagement brief, Statement of Applicability, and reference materials to produce audit-ready documents aligned to Annex A controls.

What is the process for generating compliance documentation from a Statement of Applicability?▼

Generating compliance documentation from a SoA involves reading control mappings and applying templates to output policies that satisfy Clause 7.5 requirements with structured headers and metadata.

Can I customize generated ISO 27001 policies with client branding and version control?▼

Yes, you can customize ISO 27001 policies with client branding, versioning, and approval blocks, ensuring traceability and consistency across the compliance documentation lifecycle.

Do I need existing templates to generate ISO 27001 Annex A control policies?▼

No, you do not need existing templates to generate ISO 27001 Annex A control policies; the system falls back to built-in templates when reference templates are absent.

How do I ensure audit readiness and traceability in compliance documentation?▼

Ensure audit readiness and traceability in compliance documentation by using automated policy generation that structures headers, metadata, and approval blocks according to SoA mappings.